


Porch Pirate is the most comprehensive Postman recon / OSINT client and framework that facilitates the automated discovery and exploitation of API…


CrossC2 developed based on the Cobalt Strike framework can be used for other cross-platform system control. CrossC2Kit provides some interfaces for…

Azure Post Exploitation Framework

Modular framework for discovering and analyzing open directories on the web. Crawls URLs, extracts content, applies YARA/ClamAV scanning, and outputs…

C-based Android static analysis framework for decompilation, secret detection, endpoint discovery, permission analysis, and native library scanning…

Simple framework to extract "actionable" data from Android malware (C&Cs, phone numbers etc.)

An modular asset discovery framework written in python to automate the repeating manual work

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Mobile Helper Framework (mhf) is a tool that automates the process of identifying the framework/technology used to create a mobile application.…

PhishCollector is a research framework for collecting, analysing, and tracking phishing sites.

Open Source Link Analysis & OSINT Framework

👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

This is part of a module for the framework that i'm constantly developing. Currently only information of the C2 are disclosed here.

Automated reconnaissance and XSS detection framework integrating subfinder, httpx, katana, gospider, waybackurls, and dalfox into a 9-stage pipeline…

A modular OSINT & SOCMINT framework for social media intelligence, investigation, and public data analysis.

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…